ELA-305-1 libsndfile security update

fix for divide by zero and buffer overflow errors

2020-10-29
Packagelibsndfile
Version1.0.25-9.1+deb8u5
Related CVEs CVE-2017-6892 CVE-2017-7585 CVE-2017-7586 CVE-2017-7741 CVE-2017-7742 CVE-2017-12562 CVE-2017-16942


Several issues have been found in libsndfile, a library for reading/writing audio files. All issues are basically divide by zero errors, heap read overflows or other buffer overlow errors.



For Debian 8 jessie, these problems have been fixed in version 1.0.25-9.1+deb8u5.

We recommend that you upgrade your libsndfile packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.